|
249911
|
8.8 |
HIGH
Network
|
pasdoc_project debian
|
pasdoc debian_linux
|
delphi_gui/WWWBrowserRunnerDM.pas in PasDoc 0.14 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct ar…
|
CWE-74
Injection
|
CVE-2017-17527
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249912
|
8.8 |
HIGH
Network
|
giac_project
|
giac
|
Input.cc in Bernard Parisse Giac 1.2.3.57 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-…
|
CWE-74
Injection
|
CVE-2017-17526
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249913
|
8.8 |
HIGH
Network
|
xtuple
|
postbooks
|
guiclient/guiclient.cpp in xTuple PostBooks 4.7.0 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct a…
|
CWE-74
Injection
|
CVE-2017-17525
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249914
|
8.8 |
HIGH
Network
|
swi-prolog
|
swi-prolog
|
library/www_browser.pl in SWI-Prolog 7.2.3 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument…
|
CWE-74
Injection
|
CVE-2017-17524
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249915
|
8.8 |
HIGH
Network
|
python
|
python
|
Lib/webbrowser.py in Python through 3.6.3 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-…
|
CWE-74
Injection
|
CVE-2017-17522
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249916
|
8.8 |
HIGH
Network
|
fontforge
|
fontforge
|
uiutil.c in FontForge through 20170731 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-inj…
|
CWE-74
Injection
|
CVE-2017-17521
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249917
|
8.8 |
HIGH
Network
|
debian
|
tin
|
tools/url_handler.pl in TIN 2.4.1 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injectio…
|
CWE-74
Injection
|
CVE-2017-17520
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249918
|
8.8 |
HIGH
Network
|
ocaml_batteries_project
|
ocaml_batteries
|
batteriesConfig.mlp in OCaml Batteries Included (aka ocaml-batteries) 2.6 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remot…
|
CWE-74
Injection
|
CVE-2017-17519
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249919
|
8.8 |
HIGH
Network
|
white_dune_project
|
white_dune
|
swt/motif/browser.c in White_dune (aka whitedune) 0.30.10 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to c…
|
CWE-74
Injection
|
CVE-2017-17518
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249920
|
8.8 |
HIGH
Network
|
sylpheed_project
|
sylpheed
|
libsylph/utils.c in Sylpheed through 3.6 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-i…
|
CWE-74
Injection
|
CVE-2017-17517
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|